The Comment Link Remove and Other Comment Tools WordPress plugin before 2.1.6 does not have CSRF check in its 'Delete comments easily', which could allow attackers to make logged in admin delete arbitrary comments
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: WPScan

Published: 2021-09-13T17:56:39

Updated: 2021-09-13T17:56:39

Reserved: 2021-01-14T00:00:00


Link: CVE-2021-24725

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-13T18:15:18.403

Modified: 2021-09-23T15:22:07.847


Link: CVE-2021-24725

JSON object: View

cve-icon Redhat Information

No data.

CWE